ISO 27001 8.18 Use of Privileged Utility Programs Requirement:
"The use of utility programs that can be capable of overriding system and application controls shall be restricted and tightly controlled."[1]
ISO 27001 8.18 Use of Privileged Utility Programs Requirement Explanation:
Establish a list of approved maintenance tools. This can be specified in your IT standard operating procedures. Examples of maintenance tools include network packet sniffers and software used to deploy updates to your systems. Only allow your system admins to use approved tools. Unapproved tools may be malicious and can damage your environment.
References:
Quick & Simple
Discover Our Cybersecurity Compliance Solutions:
Whether you need to meet and maintain your compliance requirements, help your clients meet them, or verify supplier compliance we have the expertise and solution for you